Portable phpMyAdmin [portable-phpmyadmin] <= 1.4.1 (closed)
unknown[en] WordPress Portable phpMyAdmin Plugin 1.4.1 has Multiple Security Bypass Vulnerabilities
- Affected:
- up to 1.4.1
- Fixed in:
- 1.4.1
- Disclosed:
- Feb 18, 2020
plugin
6 known security issues reported for the Portable Phpmyadmin WordPress plugin. Most recent disclosed Feb 18, 2020.
Running Portable Phpmyadmin on your site? Check whether your installed version is affected.
Scan your site free[en] WordPress Portable phpMyAdmin Plugin 1.4.1 has Multiple Security Bypass Vulnerabilities
[en] WordPress Portable phpMyAdmin Plugin has an authentication bypass vulnerability
The Portable phpMyAdmin plugin before 1.3.0 for WordPress allows remote attackers to bypass authentication and obtain phpMyAdmin console access via a direct request to wp-content/plugins/portable-phpmyadmin/wp-pma-mod.
WordPress Portable phpMyAdmin Plugin 1.4.1 and below has Multiple Security Bypass Vulnerabilities including /pma/phpinfo.php information disclosure via direct request.
WordPress Portable phpMyAdmin Plugin version 1.5.0 and below has an authentication bypass vulnerability.
[en] The Portable phpMyAdmin plugin before 1.3.1 for WordPress allows remote attackers to bypass authentication and obtain phpMyAdmin console access via a direct request to wp-content/plugins/portable-phpmyadmin/wp-pma-mod.
Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.
Scan your site free